linecorp kayıtları
linecorp üreticisine ait 93 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 1 · %1,1
- Silahlaştırılmış
- 1 · %1,1
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %7,5
- Yayından KEV’e ortanca
- 0 gün
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor20
- CWE-326 Inadequate Encryption Strength10
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')6
- CWE-451 User Interface (UI) Misrepresentation of Critical Information5
- CWE-269 Improper Privilege Management4
- CWE-295 Improper Certificate Validation4
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
93 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
90Hemen | CVE-2023-44487Silahlaştırılmış | The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, assiemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware · CWE-400 | Yüksek7,5 | KEV | %100,0 | 10 Eki 2023 |
39İzleyin | CVE-2023-5554İstismar yok | Lack of TLS certificate verification in log transmission of a financial module within LINE client for iOS prior to 13.16.0.linecorp · line · CWE-295 | Kritik9,8 | — | %0,2 | 12 Eki 2023 |
36İzleyin | CVE-2019-6007İstismar yok | Integer overflow vulnerability in apng-drawable 1.0.0 to 1.6.0 allows an attacker to cause a denial of service (DoS) condition or execute arlinecorp · apng-drawable · CWE-190 | Yüksek8,8 | — | %2,0 | 12 Eyl 2019 |
36İzleyin | CVE-2024-1735İstismar yok | A vulnerability has been identified in armeria-saml versions less than 1.27.2, allowing the use of malicious SAML messages to bypass authentlinecorp · armeria · CWE-287 | Kritik9,1 | — | %0,8 | 26 Şub 2024 |
35İzleyin | CVE-2021-38388İstismar yok | Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the linecorp · central dogma · CWE-862 | Yüksek8,8 | — | %0,9 | 8 Eyl 2021 |
33İzleyin | CVE-2016-4850İstismar yok | LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.linecorp · line · CWE-284 | Yüksek8,1 | — | %2,2 | 20 Nis 2017 |
32İzleyin | CVE-2019-6010İstismar yok | Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of servicelinecorp · line · CWE-190 | Yüksek7,8 | — | %1,7 | 19 Eyl 2019 |
32İzleyin | CVE-2023-39739İstismar yok | The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted brlinecorp · regina sweets\&bakery · CWE-200 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-39735İstismar yok | The leakage of the client secret in Uomasa_Saiji_news Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadlinecorp · uomasa saiji new · CWE-200 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-39736İstismar yok | The leakage of the client secret in Fukunaga_memberscard Line 13.6.1 allows attackers to obtain the channel access token and send crafted brlinecorp · fukunaga memberscard · CWE-200 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-39737İstismar yok | The leakage of the client secret in Matsuya Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messalinecorp · matsuya · CWE-200 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-39734İstismar yok | The leakage of the client secret in VISION MEAT WORKS TrackDiner10/10_mc Line v13.6.1 allows attackers to obtain the channel access token anlinecorp · trackdiner10\/10 mc · CWE-269 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-43301İstismar yok | An issue in DARTS SHOP MAXIM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel aclinecorp · line · CWE-94 | Yüksek8,2 | — | %0,6 | 7 Ara 2023 |
32İzleyin | CVE-2023-43302İstismar yok | An issue in sanTas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access tokenlinecorp · line | Yüksek8,2 | — | %0,6 | 7 Ara 2023 |
32İzleyin | CVE-2023-39740İstismar yok | The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadlinecorp · onigiriya-musubee · CWE-269 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-39732İstismar yok | The leakage of the client secret in Tokueimaru_waiting Line 13.6.1 allows attackers to obtain the channel access token and send crafted broalinecorp · tokueimaru waiting · CWE-269 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-43305İstismar yok | An issue in studio kent mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access linecorp · line | Yüksek8,2 | — | %0,6 | 7 Ara 2023 |
32İzleyin | CVE-2023-39733İstismar yok | The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast mlinecorp · tonton-tei · CWE-269 | Yüksek8,2 | — | %0,6 | 25 Eki 2023 |
32İzleyin | CVE-2023-43304İstismar yok | An issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access linecorp · line · CWE-290 | Yüksek8,2 | — | %0,5 | 7 Ara 2023 |
32İzleyin | CVE-2023-43300İstismar yok | An issue in urban_project mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel acceslinecorp · line | Yüksek8,2 | — | %0,5 | 7 Ara 2023 |
32İzleyin | CVE-2023-43303İstismar yok | An issue in craftbeer bar canvas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channelinecorp · line | Yüksek8,2 | — | %0,5 | 7 Ara 2023 |
32İzleyin | CVE-2023-45559İstismar yok | An issue in Tamaki_hamanoki Line v.13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.linecorp · line | Yüksek8,2 | — | %0,5 | 3 Oca 2024 |
31İzleyin | CVE-2021-43795İstismar yok | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in com.linecorp.armeria:armerialinecorp · armeria · CWE-22 | Yüksek7,5 | — | %1,7 | 2 Ara 2021 |
31İzleyin | CVE-2018-0609İstismar yok | Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL ilinecorp · line · CWE-426 | Yüksek7,8 | — | %0,8 | 26 Haz 2018 |
31İzleyin | CVE-2022-29505İstismar yok | Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilegelinecorp · line | Yüksek7,8 | — | %0,5 | 27 Nis 2022 |
- CVE-2023-4448790Hemen
The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as
YüksekCVSS 7,5KEVSilahlaştırılmışEPSS %100siemens · simatic s7-1500 cpu 1518f-4 pn\/dp mfp firmware10 Eki 2023
- CVE-2023-555439İzleyin
Lack of TLS certificate verification in log transmission of a financial module within LINE client for iOS prior to 13.16.0.
KritikCVSS 9,8İstismar yokEPSS %0linecorp · line12 Eki 2023
- CVE-2019-600736İzleyin
Integer overflow vulnerability in apng-drawable 1.0.0 to 1.6.0 allows an attacker to cause a denial of service (DoS) condition or execute ar
YüksekCVSS 8,8İstismar yokEPSS %2linecorp · apng-drawable12 Eyl 2019
- CVE-2024-173536İzleyin
A vulnerability has been identified in armeria-saml versions less than 1.27.2, allowing the use of malicious SAML messages to bypass authent
KritikCVSS 9,1İstismar yokEPSS %1linecorp · armeria26 Şub 2024
- CVE-2021-3838835İzleyin
Central Dogma allows privilege escalation with mirroring to the internal dogma repository that has a file managing the authorization of the
YüksekCVSS 8,8İstismar yokEPSS %1linecorp · central dogma8 Eyl 2021
- CVE-2016-485033İzleyin
LINE for Windows before 4.8.3 allows man-in-the-middle attackers to execute arbitrary code.
YüksekCVSS 8,1İstismar yokEPSS %2linecorp · line20 Nis 2017
- CVE-2019-601032İzleyin
Integer overflow vulnerability in LINE(Android) from 4.4.0 to the version before 9.15.1 allows remote attackers to cause a denial of service
YüksekCVSS 7,8İstismar yokEPSS %2linecorp · line19 Eyl 2019
- CVE-2023-3973932İzleyin
The leakage of the client secret in REGINA SWEETS&BAKERY Line 13.6.1 allows attackers to obtain the channel access token and send crafted br
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · regina sweets\&bakery25 Eki 2023
- CVE-2023-3973532İzleyin
The leakage of the client secret in Uomasa_Saiji_news Line 13.6.1 allows attackers to obtain the channel access token and send crafted broad
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · uomasa saiji new25 Eki 2023
- CVE-2023-3973632İzleyin
The leakage of the client secret in Fukunaga_memberscard Line 13.6.1 allows attackers to obtain the channel access token and send crafted br
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · fukunaga memberscard25 Eki 2023
- CVE-2023-3973732İzleyin
The leakage of the client secret in Matsuya Line 13.6.1 allows attackers to obtain the channel access token and send crafted broadcast messa
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · matsuya25 Eki 2023
- CVE-2023-3973432İzleyin
The leakage of the client secret in VISION MEAT WORKS TrackDiner10/10_mc Line v13.6.1 allows attackers to obtain the channel access token an
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · trackdiner10\/10 mc25 Eki 2023
- CVE-2023-4330132İzleyin
An issue in DARTS SHOP MAXIM mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel ac
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-4330232İzleyin
An issue in sanTas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-3974032İzleyin
The leakage of the client secret in Onigiriya-musubee Line 13.6.1 allows attackers to obtain the channel access token and send crafted broad
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · onigiriya-musubee25 Eki 2023
- CVE-2023-3973232İzleyin
The leakage of the client secret in Tokueimaru_waiting Line 13.6.1 allows attackers to obtain the channel access token and send crafted broa
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · tokueimaru waiting25 Eki 2023
- CVE-2023-4330532İzleyin
An issue in studio kent mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-3973332İzleyin
The leakage of the client secret in TonTon-Tei Line v13.6.1 allows attackers to obtain the channel access token and send crafted broadcast m
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · tonton-tei25 Eki 2023
- CVE-2023-4330432İzleyin
An issue in PARK DANDAN mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-4330032İzleyin
An issue in urban_project mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel acces
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-4330332İzleyin
An issue in craftbeer bar canvas mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channe
YüksekCVSS 8,2İstismar yokEPSS %1linecorp · line7 Ara 2023
- CVE-2023-4555932İzleyin
An issue in Tamaki_hamanoki Line v.13.6.1 allows attackers to send crafted notifications via leakage of the channel access token.
YüksekCVSS 8,2İstismar yokEPSS %0linecorp · line3 Oca 2024
- CVE-2021-4379531İzleyin
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in com.linecorp.armeria:armeria
YüksekCVSS 7,5İstismar yokEPSS %2linecorp · armeria2 Ara 2021
- CVE-2018-060931İzleyin
Untrusted search path vulnerability in LINE for Windows versions before 5.8.0 allows an attacker to gain privileges via a Trojan horse DLL i
YüksekCVSS 7,8İstismar yokEPSS %1linecorp · line26 Haz 2018
- CVE-2022-2950531İzleyin
Due to build misconfiguration in openssl dependency, LINE for Windows before 7.8 is vulnerable to DLL injection that could lead to privilege
YüksekCVSS 7,8İstismar yokEPSS %0linecorp · line27 Nis 2022